Privacy Policy
Last updated: 13/07/2026
1. Introduction
Treasures in Scripture respects your privacy and is committed to protecting your personal information.
This Privacy Policy explains how we collect, use, store, share and protect personal information when you:
- Visit our website;
- Create an account;
- Place an order;
- Download an ebook or PDF;
- Subscribe to marketing communications;
- Complete a contact form; or
- Communicate with us.
We process personal information in accordance with the Protection of Personal Information Act 4 of 2013, commonly known as POPIA, and other applicable South African laws. POPIA establishes minimum conditions for the lawful processing of personal information by public and private organisations.
2. Responsible party
The responsible party for personal information processed through this website is:
Trading name: Treasures in Scripture
Email address: info@treasuresinscripture.co.za
Telephone number: +27 74 894 7942
Website: https://treasuresinscripture.co.za
3. Information Officer
Our Information Officer is responsible for overseeing compliance with POPIA and responding to privacy-related requests.
Information Officer: Werner Liebenberg
Email address: info@treasuresinscripture.co.za
Telephone number: +27 74 894 7942
Public and private bodies are required to register their Information Officers with the Information Regulator before those officers take up their POPIA duties.
4. Personal information we collect
Depending on how you use the website, we may collect the following information.
4.1 Identity and contact information
This may include:
- Full name;
- Email address;
- Telephone number;
- Billing address;
- Country or region;
- Company name, where provided; and
- Account username.
4.2 Order and transaction information
This may include:
- Products purchased;
- Order number;
- Purchase date;
- Selected currency;
- Amount paid;
- Payment status;
- Applied coupons;
- Refund information;
- Download history; and
- Customer notes submitted with an order.
4.3 Payment information
Payments are processed through third-party payment gateways.
We may receive information such as:
- Payment status;
- Payment reference;
- Payment method;
- Limited card information, such as card type or the last four digits; and
- Fraud-screening results.
We do not intentionally collect or store your complete card number, card security code or online banking login details where these are entered directly into the secure system of the payment provider.
Your chosen payment gateway processes payment information under its own terms and privacy policy.
4.4 Account information
When you create an account, we may store:
- Your account details;
- Password in encrypted or hashed form;
- Saved addresses;
- Previous orders; and
- Available downloads.
4.5 Communications
We may retain information that you provide when you:
- Contact us by email;
- Complete a contact form;
- Submit a customer-support request;
- Request a refund;
- Send a review or testimonial; or
- Communicate with us through social media.
4.6 Technical and usage information
Our website and service providers may automatically collect:
- Internet Protocol address;
- Browser type;
- Device type;
- Operating system;
- Referring website;
- Pages viewed;
- Date and time of access;
- Approximate geographic region;
- Cookie identifiers;
- Login activity; and
- Website security and error logs.
4.7 Marketing information
Where applicable, we may record:
- Whether you subscribed to our mailing list;
- The date and method of consent;
- Newsletter engagement;
- Marketing preferences; and
- Unsubscribe requests.
5. Special personal information
POPIA provides additional protection for certain categories of sensitive information, including information about religious or philosophical beliefs.
Because we sell Christian books and Scripture-based resources, a purchase may indicate an interest in Christian content. However, we do not use a purchase to make assumptions about your religious identity or beliefs.
We do not intentionally request or process special personal information unless:
- It is necessary for a lawful purpose;
- You have voluntarily provided it;
- We have a lawful justification; and
- Appropriate safeguards are applied.
Please avoid including unnecessary sensitive personal information in contact forms, reviews or customer-support messages.
6. How we collect information
We collect personal information:
- Directly from you;
- When you create an account;
- When you place an order;
- When you subscribe to communications;
- When you contact us;
- Automatically through cookies and website technologies;
- From payment gateways;
- From website hosting and security providers; and
- From service providers assisting with order processing, email delivery or website administration.
7. Why we process your information
We may process personal information for the following purposes.
7.1 Processing and delivering orders
We use your information to:
- Process your purchase;
- Verify payment;
- Send order confirmations;
- Provide download access;
- Maintain your customer account; and
- Respond to order-related enquiries.
7.2 Customer service
We may use your information to:
- Respond to questions;
- Replace faulty or incorrect files;
- Restore expired download access;
- Investigate payment issues;
- Process eligible refunds; and
- Resolve complaints.
7.3 Website operation and security
We may use technical information to:
- Keep the website operational;
- Prevent fraud;
- Detect unauthorised access;
- Block malicious activity;
- Troubleshoot errors;
- Create backups; and
- Improve performance.
7.4 Recordkeeping and legal compliance
We may retain and process records to:
- Meet accounting and tax obligations;
- Maintain evidence of orders and downloads;
- Respond to lawful requests;
- Resolve disputes;
- Enforce our Terms and Conditions; and
- Protect our legal rights.
7.5 Website improvement and analytics
Where permitted, we may analyse website activity to understand:
- Which pages are used;
- How visitors find the website;
- Whether checkout is functioning correctly;
- Where technical errors occur; and
- How the customer experience can be improved.
7.6 Marketing
Where you have subscribed or where marketing is otherwise legally permitted, we may send information about:
- New books;
- New Scripture-based resources;
- Special offers;
- Author updates; and
- Relevant news.
POPIA regulates direct marketing by electronic communication, and consent and opt-out requirements may apply. The Information Regulator has published guidance specifically dealing with direct marketing under POPIA.
8. Grounds for processing
Depending on the circumstances, we process personal information because:
- It is necessary to perform a contract with you;
- You have consented;
- Processing is required by law;
- Processing protects a legitimate interest;
- Processing protects your legitimate interests; or
- Processing is necessary for the proper operation and security of our business.
Where processing depends on consent, you may withdraw that consent. Withdrawal will not affect processing that occurred lawfully before consent was withdrawn.
9. Transactional and marketing emails
Order confirmations, payment notifications, download links, password resets, security notices and customer-service messages are transactional communications. These may be sent where necessary to provide the service you requested.
Marketing emails are separate from transactional communications.
You may unsubscribe from marketing emails by:
- Using the unsubscribe link in the email; or
- Contacting us at [insert email address].
Unsubscribing from marketing will not prevent essential order or account communications.
10. Cookies
Cookies are small files stored on your device when you visit a website.
We may use the following types of cookies.
10.1 Essential cookies
These are required for functions such as:
- Shopping cart operation;
- Checkout;
- Customer login;
- Security;
- Remembering your session; and
- Providing digital downloads.
Disabling essential cookies may prevent parts of the store from functioning correctly.
10.2 Preference cookies
These may remember choices such as:
- Currency;
- Language;
- Login preferences; and
- Display settings.
10.3 Analytics cookies
Where enabled, these help us understand how visitors use the website and identify technical or usability problems.
10.4 Marketing cookies
Where enabled, these may be used to measure advertising or marketing activity.
Non-essential cookies should only be activated in accordance with the consent settings implemented on the website.
You can manage cookies through:
- The website’s cookie banner or settings tool; and
- Your browser settings.
11. WooCommerce
Our store uses WooCommerce to manage products, customer accounts, orders and digital downloads.
When you purchase from us, information such as your name, email address, billing details, order contents, payment status and download access may be stored in the website’s WooCommerce database.
This information is used to process orders, deliver digital products, maintain records and provide customer support.
12. Payment gateways
We may use payment gateways such as:
- Paystack or
- Another gateway displayed during checkout.
The applicable gateway may collect and process personal and financial information directly.
Payment providers act under their own terms and privacy policies. Please review the payment provider’s privacy notice before completing payment.
We may share the information reasonably required to:
- Initiate the payment;
- Confirm the transaction;
- Prevent fraud;
- Process a refund; and
- Resolve a payment dispute.
Remove any gateway from this section that is not actually enabled on the website.
13. Service providers
We may share limited personal information with service providers that assist us with:
- Website hosting;
- Domain and email hosting;
- Website maintenance;
- Payment processing;
- Accounting;
- Email delivery;
- Newsletter management;
- Analytics;
- Website security;
- Backups;
- Cloud storage;
- Fraud prevention; and
- Professional legal or accounting services.
Service providers may only receive information reasonably necessary to perform their services.
We do not sell personal information to advertisers or unrelated third parties.
14. International processing and transfers
Some service providers may operate or store information outside South Africa.
Where personal information is transferred internationally, we will take reasonable steps to ensure that the transfer complies with POPIA and that appropriate privacy safeguards apply.
These safeguards may include:
- Data-protection agreements;
- Contractual commitments;
- Applicable foreign privacy laws;
- Consent, where appropriate; or
- Other measures permitted under POPIA.
15. Retention of information
We retain personal information only for as long as reasonably necessary for the purpose for which it was collected or as required by law.
Retention periods may depend on:
- Tax and accounting requirements;
- Order and payment records;
- Download access;
- Fraud prevention;
- Customer-support history;
- Legal claims;
- Consent records; and
- Website security logs.
When information is no longer required, we will take reasonable steps to:
- Delete it;
- Destroy it;
- De-identify it; or
- Restrict further processing.
Backup copies may remain for a limited period until they are securely overwritten.
16. Information security
We take reasonable technical and organisational measures to protect personal information against:
- Loss;
- Unauthorised access;
- Misuse;
- Alteration;
- Destruction; and
- Unlawful disclosure.
Measures may include:
- Secure website connections;
- Access controls;
- Strong passwords;
- Software updates;
- Website security monitoring;
- Backups;
- Malware protection; and
- Restricted administrative access.
No internet-based system can be guaranteed to be completely secure.
17. Security incidents
Where personal information has been accessed or acquired by an unauthorised person, we will investigate and take reasonable corrective action.
Where required by POPIA, we will notify the Information Regulator and affected individuals. The Information Regulator states that responsible parties may need to explain what happened, how the risk is being addressed and what affected individuals can do to protect themselves.
18. Your privacy rights
Subject to applicable law, you may request that we:
- Confirm whether we hold personal information about you;
- Provide access to your personal information;
- Correct inaccurate or incomplete information;
- Update outdated information;
- Delete information that we are no longer entitled to retain;
- Restrict or object to certain processing;
- Stop sending direct marketing;
- Explain how your information is being used; or
- Provide information about the identity of third parties that have had access to your information, where applicable.
Some requests may be limited where we are required to retain information by law or where another lawful ground permits continued processing.
19. How to submit a privacy request
Send your request to:
Information Officer: Werner Liebenberg
Email address: info@treasuresinscripture.co.za
Telephone number: +27 74 894 7942
Please include enough information for us to:
- Confirm your identity;
- Understand your request; and
- Locate the relevant records.
We may request reasonable proof of identity before disclosing, correcting or deleting personal information.
20. Complaints
Please contact our Information Officer first so that we have an opportunity to address your concern.
You may also lodge a complaint with the Information Regulator if you believe your personal information has been processed in violation of POPIA. The Regulator provides an online complaint process and accepts POPIA complaints by email.
Information Regulator South Africa
POPIA complaints: POPIAComplaints@inforegulator.org.za
Telephone: 010 023 5200
Toll-free: 0800 017 160
General enquiries: enquiries@inforegulator.org.za
21. Children
Our website and products are not specifically directed at children.
A person under 18 should use the website or make a purchase only with the involvement and permission of a parent or legal guardian.
We do not knowingly collect personal information from children for marketing or profiling purposes.
Where we learn that children’s information has been collected without appropriate authority, we will take reasonable steps to delete or lawfully manage the information. The Information Regulator publishes separate guidance on processing children’s personal information.
22. External links
The website may contain links to third-party websites, social-media platforms or services.
We do not control the privacy practices of external websites. You should review their privacy policies before providing personal information.
23. Reviews and testimonials
Where customers submit reviews or testimonials, the information may be displayed publicly with the name or display name supplied.
We will not publish private correspondence as a testimonial without permission.
Please do not include personal contact information or sensitive information in a public review.
24. Changes to this policy
We may update this Privacy Policy to reflect changes in:
- Our website;
- Our products;
- Service providers;
- Business practices; or
- Legal requirements.
The updated policy will be published on this page with a revised “Last updated” date.
Material changes may also be communicated through the website or by email where appropriate.
